NGPProc.exe

Nitrobit Group Policy

analytiq consulting gmbh

Publisher:
analytiq consulting gmbh  (signed and verified)

Product:
Nitrobit Group Policy

Description:
NGPProc.exe

Version:
2, 2, 5, 1

MD5:
0a2888d79d00952d994bb91114984eae

SHA-1:
6d75f99e258ea34a2f2d6b2d88e2b5a7f131d617

SHA-256:
69726cfd1a37977b3c02d75a2748ce1b2ffe994d6aace70917669d90d7e33633

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 3:26:56 AM UTC  (today)

File size:
623.6 KB (638,616 bytes)

Product version:
2, 2, 5, 1

Copyright:
Copyright (C) 2006 analytiq consulting gmbh

Original file name:
NGPProc.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\nitrobit group policy\ngpproc.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/14/2011 4:00:00 PM

Valid to:
11/14/2012 3:59:59 PM

Subject:
CN=analytiq consulting gmbh, O=analytiq consulting gmbh, STREET=Hermann-Steinhaeuser-Strasse, STREET=43-47, L=Offenbach, S=HE, PostalCode=63065, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CFBA98A11DED0A66E04147197561684A

File PE Metadata
Compilation timestamp:
11/25/2011 1:41:44 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:KWEiqtzT5Dyrx1BQ+E1+R5j6UAKF7RIOr1/XfVEx:KMqwm+fR5j6uF7R9/tq

Entry address:
0x467EF

Entry point:
E8, B7, 9B, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, FF, 35, 34, 31, 47, 00, 8B, 35, 68, 31, 46, 00, FF, D6, 85, C0, 74, 21, A1, 30, 31, 47, 00, 83, F8, FF, 74, 17, 50, FF, 35, 34, 31, 47, 00, FF, D6, FF, D0, 85, C0, 74, 08, 8B, 80, F8, 01, 00, 00, EB, 27, BE, 6C, CB, 46, 00, 56, FF, 15, F8, 32, 46, 00, 85, C0, 75, 0B, 56, E8, 22, 07, 00, 00, 59, 85, C0, 74, 18, 68, 5C, CB, 46, 00, 50, FF, 15, 44, 32, 46, 00, 85, C0, 74, 08, FF, 75, 08, FF, D0, 89, 45, 08, 8B, 45, 08, 5E, 5D, C3, 6A, 00, E8, 87...
 
[+]

Entropy:
6.2086

Code size:
389.5 KB (398,848 bytes)

Scan NGPProc.exe - Powered by Reason Core Security